Senior Network Security Engineer

Verizon Verizon · Telecom · Southlake, TX

Senior Network Security Engineer at Verizon responsible for safeguarding critical routing infrastructure and data center fabrics. The role involves building threat detections, implementing security fundamentals, configuring network devices (Cisco, Nokia, Juniper, F5), and using automation tools for lifecycle management and threat modeling. Requires expertise in network protocols and security frameworks like CIS Benchmarks and MITRE ATT&CK.

What you'd actually do

  1. Providing recommendations to improve defensive cyberspace operations - internal defensive measures (DCO-IDM) and the cyber resiliency of the portfolio’s systems and services.
  2. Collaborating with stakeholders to improve the core networking security posture through the assessment and implementation of the Network Security Fundamentals (Access Management, Situational Awareness, Configuration Hardening, Vulnerability Mitigation).
  3. Providing recommendations to improve defensive cybersecurity practices.
  4. Discovering, identifying, and confirming inventory of all network assets and asset information (model, version, etc) in your respective area of responsibility.
  5. Building a deep understanding of the network assets and the roadmap to quickly assess the impact of vulnerabilities and identify End-of-Life/End-of-Support hardware/software.

Skills

Required

  • Cisco IOS XE/XR/NX-OS
  • Nokia SR OS
  • Juniper OS
  • F5 F5OS/TMOS
  • TCP/IP (IPv4 & IPv6)
  • VXLAN
  • SR
  • EVPN
  • OSPF
  • BGP
  • BGP security (RPKI, prefix-lists, TTL security)
  • IGP security (OSPF/IS-IS authentication)
  • CIS Benchmarks
  • MITRE ATT&CK for Network Devices
  • Ansible
  • Spunk
  • data networking
  • telecommunications
  • network security
  • threat detection
  • log analysis
  • incident response
  • ACL design and auditing
  • automation tools

Nice to have

  • CCIE (Service Provider or Security)
  • Nokia NRS II or SRA
  • JNCIE (Service Provider or Security)
  • F5 Certified Technology Specialist (BIG-IP) or Solution Expert
  • CISSP

What the JD emphasized

  • expert knowledge of TCP/IP (IPv4 & IPv6), VXLAN, SR, EVPN, OSPF, and BGP
  • hands-on proficiency with Cisco IOS XE/XR/NX-OS, Nokia SR OS, Juniper OS, and F5 F5OS/TMOS
  • strong knowledge of BGP security (RPKI, prefix-lists, TTL security) and IGP security (OSPF/IS-IS authentication)
  • Framework fluency in CIS Benchmarks applying Level 1 & Level 2 hardening profiles
  • Ability to explain how specific network controls mitigate specific TTPs (Tactics, Techniques, and Procedures) in the Network Devices matrix.